Back to Database
Status published
High
CVE-2022-28127
A data removal vulnerability exists in the web_server /action/remove/ API...
Vulnerability Description
A data removal vulnerability exists in the web_server /action/remove/ API functionality of Robustel R1510 3.3.0. A specially-crafted network request can lead to arbitrary file deletion. An attacker can send a sequence of requests to trigger this vulnerability.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-28127
Credits & Attribution
No credits recorded in the NVD database.
More from Robustel
View All →CVE-2022-35271
A denial of service vulnerability exists in the web_server hashFirst...
Medium
4.9
CVE-2022-35270
A denial of service vulnerability exists in the web_server hashFirst...
Medium
4.9
CVE-2022-35269
A denial of service vulnerability exists in the web_server hashFirst...
Medium
4.9
CVE-2022-35268
A denial of service vulnerability exists in the web_server hashFirst...
Medium
4.9
CVE-2022-35267
A denial of service vulnerability exists in the web_server hashFirst...
Medium
4.9
Affected Vendor
Robustel
View all reports →Affected Software
R1510
Vulnerable Versions:
3.3.0
Timeline
Official Publish:
June 30th, 2022
Last Modified:
April 15th, 2025
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:H